{
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "tool": {
    "slug": "agentos",
    "name": "AgentOS",
    "vendor": "Framers Lab, Inc.",
    "vendorUrl": "https://agentos.sh",
    "kind": "framework",
    "category": "frameworks",
    "summary": "Open-source TypeScript agent framework from Framers Lab, installed from npm as @framers/agentos. It runs agents with long-term memory, multi-agent teams, graph workflows with checkpoints, guardrails and approval gates across 11 model providers.",
    "url": "https://www.anchorterminal.com/tools/agentos",
    "markdownUrl": "https://www.anchorterminal.com/tools/agentos.md",
    "slimMarkdownUrl": "https://www.anchorterminal.com/tools/agentos.min.md",
    "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/agentos.json",
    "repo": "https://github.com/framerslab/agentos",
    "license": "Apache-2.0",
    "transports": [],
    "packages": [
      {
        "registry": "npm",
        "name": "@framers/agentos"
      }
    ],
    "auth": "api-key",
    "authNotes": "The framework has no account of its own. Each model provider takes its own key from the environment or from the agent's configuration, and the Claude and Gemini CLI providers use an existing local sign-in.",
    "pricing": "free",
    "pricingNotes": "Free and Apache 2.0, with no paid tier of AgentOS found. You pay your model provider. The terms page says the maintainers give no service-level agreement for self-hosted use (https://agentos.sh/legal/terms/, checked 2026-10-08).",
    "priceSummary": "Free · OSS",
    "where": "library",
    "x402": {
      "level": "no",
      "evidence": "No x402, MPP or L402 in the repository or on agentos.sh (checked 2026-10-08).",
      "endpoints": []
    },
    "toolCount": null,
    "popularity": {
      "githubStars": 677,
      "npmWeekly": 5328,
      "pypiWeekly": null,
      "asOf": "2026-10-08"
    },
    "docsUrl": "https://docs.agentos.sh",
    "llmsTxt": "https://agentos.sh/llms.txt",
    "capabilities": [
      "agent.framework",
      "agent.multi-agent",
      "agent.durable"
    ],
    "tags": [
      "framework",
      "typescript",
      "open-source",
      "llms-txt",
      "free",
      "no-card"
    ],
    "lastRelease": "2026-10-08",
    "graded": true,
    "anchor": {
      "graded": true,
      "score": 75.3,
      "grade": "BB",
      "agentReady": true,
      "rank": 46,
      "ranked": true,
      "rankOf": 629,
      "categoryRank": 5,
      "methodology": "0.4",
      "run": "2026-10-01",
      "scores": {
        "ergonomics": 74,
        "maintenance": 87,
        "payments": 60,
        "reliability": 77,
        "schema": 92,
        "security": 81,
        "transparency": 64
      },
      "pending": [
        "performance",
        "tasks"
      ],
      "breakdown": [
        {
          "key": "reliability",
          "name": "Reliability",
          "weight": 16,
          "effectiveWeight": 20,
          "score": 77,
          "points": 15.4,
          "reason": "Official npm package with Node 22 or newer stated (20). A public CI workflow builds, lints, type-checks and runs the tests with coverage, and the 12 most recent runs on master, all on 8 October 2026, passed (25). 16 open issues and pull requests in total, most filed by the maintainer, with one outside suggestion from 12 September unanswered (20). Written release rules give a breaking change a minor version and a changelog note, but feature commits ship as patches and two breaking minors, 0.11.0 and 0.12.0, landed on 7 October (12). Version 0.12.12, not declared stable (0). Local-software reading."
        },
        {
          "key": "performance",
          "name": "Performance",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes."
        },
        {
          "key": "schema",
          "name": "Schema \u0026 documentation",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 92,
          "points": 14.95,
          "reason": "Typed TypeScript API with a TypeDoc reference (25). llms.txt on agentos.sh and docs.agentos.sh (10). The guides say which surface to reach for, for example agency-level approval for most apps and workflow nodes for an explicit graph, and the tool-forging page states what its sandbox does not do (16). Tools take Zod schemas (15). 22 runnable examples and a cookbook, with CLI error codes documented but no single page for the library's error classes found (11). A dated changelog generated on every release and written version rules (15). Framework reading."
        },
        {
          "key": "ergonomics",
          "name": "Agent ergonomics",
          "weight": 13,
          "effectiveWeight": 16.25,
          "score": 74,
          "points": 12.03,
          "reason": "An agent is about five lines with the provider detected from the environment, and capability discovery selects tools by meaning, but no MCP client was found in the package source or the docs sitemap, which this line is read on for a framework (12). Session history is capped at about 120K tokens by default, with `history.maxTokens`, `reseed()` and `maxSteps` (20). Typed error classes and a `fallbacksUsed` field on results, with error documentation spread across pages (14). Checkpoints replay or re-run a node by its declared effect class on resume, and providers fall back in order, though the shipped checkpoint store is in memory (18). Few required options, TypeScript only (10)."
        },
        {
          "key": "security",
          "name": "Security \u0026 auth",
          "weight": 14,
          "effectiveWeight": 17.5,
          "score": 81,
          "points": 14.18,
          "reason": "No analytics or telemetry code found in the source, and the privacy and security pages say the runtime sends nothing to the vendor. OpenTelemetry is opt-in and the host starts the SDK (30). Approval gates on five triggers, five security tiers and a rule that composed tools chain a side-effecting step only when the host lists it. Agent-written code runs in an in-process node:vm context, off by default, and no gate is on unless configured (17). SECURITY.md names model output, tool results and retrieved content as untrusted input, and the injection classifier is a separate extension package (11). OpenTelemetry spans, a usage ledger and a reasoning trace (15). SECURITY.md with a private advisory form, acknowledgement in 5 business days and disclosure at 90 days. No security.txt, no bounty and no published advisory found, and the site's security page gives a different acknowledgement time of 48 hours (8). Framework reading."
        },
        {
          "key": "payments",
          "name": "Payments \u0026 pricing",
          "weight": 10,
          "effectiveWeight": 12.5,
          "score": 60,
          "points": 7.5,
          "reason": "No payment protocol (0). Self-hosted rule. The package is free under Apache 2.0 with nothing to buy (20), installs with no card (20) and needs no account (20). No paid tier of AgentOS was found."
        },
        {
          "key": "tasks",
          "name": "Task success",
          "weight": 10,
          "effectiveWeight": 0,
          "pending": true,
          "points": 0,
          "reason": "Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored."
        },
        {
          "key": "maintenance",
          "name": "Maintenance \u0026 community",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 87,
          "points": 7.61,
          "reason": "0.12.12 on 2026-10-08 (30). 98 versions on npm in the 90 days to 8 October (20). Little outside traffic to judge by. Two outside issues were closed with five comments each, one outside suggestion has been open without a reply since 12 September, and nearly all pull requests come from one maintainer (15). The npm package is current (15). CI and coverage run on every push, but the workflows have no `npm audit` step and the repository has no Dependabot configuration file (7)."
        },
        {
          "key": "transparency",
          "name": "Transparency \u0026 trust",
          "weight": 7,
          "effectiveWeight": 8.75,
          "score": 64,
          "points": 5.6,
          "note": "editorial 80, provenance 48",
          "reason": "Apache 2.0 (30). The privacy page and the security page agree that the core collects nothing and that the operator is the data controller. Both describe a self-hosted package, and the entity is written three ways, as Framers Lab, Inc., Frame.dev and Framers (22). SECURITY.md says only the latest version gets fixes, and breaking changes carry changelog notes, but no deprecation policy or notice period was found (8). No telemetry is sent and the site says so (20)."
        }
      ],
      "assessment": {
        "date": "2026-10-08",
        "basis": "public evidence",
        "confidence": "medium",
        "notes": {
          "ergonomics": "An agent is about five lines with the provider detected from the environment, and capability discovery selects tools by meaning, but no MCP client was found in the package source or the docs sitemap, which this line is read on for a framework (12). Session history is capped at about 120K tokens by default, with `history.maxTokens`, `reseed()` and `maxSteps` (20). Typed error classes and a `fallbacksUsed` field on results, with error documentation spread across pages (14). Checkpoints replay or re-run a node by its declared effect class on resume, and providers fall back in order, though the shipped checkpoint store is in memory (18). Few required options, TypeScript only (10).",
          "maintenance": "0.12.12 on 2026-10-08 (30). 98 versions on npm in the 90 days to 8 October (20). Little outside traffic to judge by. Two outside issues were closed with five comments each, one outside suggestion has been open without a reply since 12 September, and nearly all pull requests come from one maintainer (15). The npm package is current (15). CI and coverage run on every push, but the workflows have no `npm audit` step and the repository has no Dependabot configuration file (7).",
          "payments": "No payment protocol (0). Self-hosted rule. The package is free under Apache 2.0 with nothing to buy (20), installs with no card (20) and needs no account (20). No paid tier of AgentOS was found.",
          "reliability": "Official npm package with Node 22 or newer stated (20). A public CI workflow builds, lints, type-checks and runs the tests with coverage, and the 12 most recent runs on master, all on 8 October 2026, passed (25). 16 open issues and pull requests in total, most filed by the maintainer, with one outside suggestion from 12 September unanswered (20). Written release rules give a breaking change a minor version and a changelog note, but feature commits ship as patches and two breaking minors, 0.11.0 and 0.12.0, landed on 7 October (12). Version 0.12.12, not declared stable (0). Local-software reading.",
          "schema": "Typed TypeScript API with a TypeDoc reference (25). llms.txt on agentos.sh and docs.agentos.sh (10). The guides say which surface to reach for, for example agency-level approval for most apps and workflow nodes for an explicit graph, and the tool-forging page states what its sandbox does not do (16). Tools take Zod schemas (15). 22 runnable examples and a cookbook, with CLI error codes documented but no single page for the library's error classes found (11). A dated changelog generated on every release and written version rules (15). Framework reading.",
          "security": "No analytics or telemetry code found in the source, and the privacy and security pages say the runtime sends nothing to the vendor. OpenTelemetry is opt-in and the host starts the SDK (30). Approval gates on five triggers, five security tiers and a rule that composed tools chain a side-effecting step only when the host lists it. Agent-written code runs in an in-process node:vm context, off by default, and no gate is on unless configured (17). SECURITY.md names model output, tool results and retrieved content as untrusted input, and the injection classifier is a separate extension package (11). OpenTelemetry spans, a usage ledger and a reasoning trace (15). SECURITY.md with a private advisory form, acknowledgement in 5 business days and disclosure at 90 days. No security.txt, no bounty and no published advisory found, and the site's security page gives a different acknowledgement time of 48 hours (8). Framework reading.",
          "transparency": "Apache 2.0 (30). The privacy page and the security page agree that the core collects nothing and that the operator is the data controller. Both describe a self-hosted package, and the entity is written three ways, as Framers Lab, Inc., Frame.dev and Framers (22). SECURITY.md says only the latest version gets fixes, and breaking changes carry changelog notes, but no deprecation policy or notice period was found (8). No telemetry is sent and the site says so (20)."
        },
        "sources": [
          {
            "what": "npm registry document for @framers/agentos (versions and dates)",
            "url": "https://registry.npmjs.org/@framers/agentos",
            "seen": "2026-10-08"
          },
          {
            "what": "npm weekly downloads",
            "url": "https://api.npmjs.org/downloads/point/last-week/@framers/agentos",
            "seen": "2026-10-08"
          },
          {
            "what": "repository clone (README, docs, workflows, CHANGELOG, LICENSE, source)",
            "url": "https://github.com/framerslab/agentos",
            "seen": "2026-10-08"
          },
          {
            "what": "GitHub API, repository statistics",
            "url": "https://api.github.com/repos/framerslab/agentos",
            "seen": "2026-10-08"
          },
          {
            "what": "GitHub API, CI runs on master",
            "url": "https://api.github.com/repos/framerslab/agentos/actions/workflows/ci.yml/runs?branch=master",
            "seen": "2026-10-08"
          },
          {
            "what": "CI workflow, including the documentation wording check",
            "url": "https://github.com/framerslab/agentos/blob/master/.github/workflows/ci.yml",
            "seen": "2026-10-08"
          },
          {
            "what": "security policy",
            "url": "https://github.com/framerslab/agentos/blob/master/.github/SECURITY.md",
            "seen": "2026-10-08"
          },
          {
            "what": "release rules",
            "url": "https://github.com/framerslab/agentos/blob/master/docs/getting-started/RELEASING.md",
            "seen": "2026-10-08"
          },
          {
            "what": "tool forging and sandbox mode",
            "url": "https://github.com/framerslab/agentos/blob/master/docs/architecture/EMERGENT_CAPABILITIES.md",
            "seen": "2026-10-08"
          },
          {
            "what": "human approval",
            "url": "https://github.com/framerslab/agentos/blob/master/docs/safety/HUMAN_IN_THE_LOOP.md",
            "seen": "2026-10-08"
          },
          {
            "what": "checkpointing",
            "url": "https://github.com/framerslab/agentos/blob/master/docs/orchestration/CHECKPOINTING.md",
            "seen": "2026-10-08"
          },
          {
            "what": "observability",
            "url": "https://github.com/framerslab/agentos/blob/master/docs/observability/OBSERVABILITY.md",
            "seen": "2026-10-08"
          },
          {
            "what": "llms.txt",
            "url": "https://agentos.sh/llms.txt",
            "seen": "2026-10-08"
          },
          {
            "what": "docs llms.txt and sitemap",
            "url": "https://docs.agentos.sh/llms.txt",
            "seen": "2026-10-08"
          },
          {
            "what": "terms guidance",
            "url": "https://agentos.sh/legal/terms/",
            "seen": "2026-10-08"
          },
          {
            "what": "privacy guidance",
            "url": "https://agentos.sh/legal/privacy/",
            "seen": "2026-10-08"
          },
          {
            "what": "security page",
            "url": "https://agentos.sh/legal/security/",
            "seen": "2026-10-08"
          },
          {
            "what": "security.txt (404)",
            "url": "https://agentos.sh/.well-known/security.txt",
            "seen": "2026-10-08"
          },
          {
            "what": "OSV query for @framers/agentos (no records)",
            "url": "https://api.osv.dev/v1/query",
            "seen": "2026-10-08"
          },
          {
            "what": "RDAP for agentos.sh",
            "url": "https://rdap.identitydigital.services/rdap/domain/agentos.sh",
            "seen": "2026-10-08"
          }
        ],
        "openQuestions": [
          "The scout's facts held on 8 October 2026 (677 stars, 0.12.12, Apache 2.0). Its entry did not mention that no MCP client was found",
          "Whether an MCP client exists in a sibling package. None was found in @framers/agentos, in the dependencies of @framers/agentos-extensions 1.0.3 or in the docs sitemap, and we did not clone the extensions repository",
          "The npm time index lists versions 1.0.0 to 1.0.3 from 11 December 2025 that are no longer in the registry. We found no note explaining their removal",
          "Whether Dependabot is enabled in the repository settings, as the security page says. No configuration file is in the repository",
          "The site footer gives MIT for extensions, and @framers/agentos-extensions 1.0.3 declares Apache-2.0 on npm",
          "unchecked: the vendor's LongMemEval figures (85.6 per cent on S, 70.2 per cent on M). They are the vendor's claims and were not reproduced",
          "unchecked: frame.dev and the hosted Voice Chat Assistant terms, which cover a separate product",
          "Which security tier, if any, applies to a plain `agent()` call. The `tier` field is optional and we did not trace the default"
        ]
      },
      "negative": -2,
      "negativeNotes": [
        "2026-10-08. The README, which is also the npm page, says forged tools run in a \"hardened `node:vm` sandbox\". The project's own CI fails the build if its architecture docs use that word for the same executor, with the message that the documentation claims an isolation the executor does not have, and the docs quote Node's statement that node:vm is not a security mechanism. The site's security page also says npm audit runs in CI, and no workflow runs it. Sandbox mode is off by default and the docs are candid, so 2 points. https://github.com/framerslab/agentos/blob/master/.github/workflows/ci.yml"
      ],
      "verdict": "A TypeScript agent framework with typed tools, six multi-agent strategies, checkpointed graphs, approval gates and no telemetry of its own. It is at 0.12.12 after 98 releases in 90 days, two of them breaking on 7 October 2026. No MCP client was found in the package, and code tools an agent writes run in an in-process node:vm context.",
      "bestFor": "TypeScript teams that want long-term memory, personas, voice and channel adapters and multi-agent teams in one package, and that will pin versions.",
      "strengths": [
        "Apache 2.0, with no analytics or telemetry code found in the source and a privacy page that says the core sends nothing to the vendor",
        "Approval gates on five triggers (named tools, agents, forged tools, the final return, strategy overrides) with CLI, Slack, webhook and LLM-judge handlers",
        "CI with a test suite passed on each of the 12 most recent pushes to master on 8 October 2026",
        "Breaking changes get a minor version and a changelog note under written release rules",
        "llms.txt on both sites, a TypeDoc API reference and 22 runnable examples in the repository"
      ],
      "weaknesses": [
        "Version 0.12.12, with 27 releases on 7 and 8 October 2026 and breaking minors 0.11.0 and 0.12.0 on the same day",
        "No MCP client found in the package source or the docs sitemap",
        "Agent-written code tools run in an in-process node:vm context, which Node says is not a security mechanism. The mode is off by default",
        "The README calls that sandbox hardened, a word the project's CI bars from its architecture docs",
        "The only checkpoint store shipped is in memory, so resuming after a crash needs a store you write"
      ],
      "agentNotes": [
        "Pin an exact version of @framers/agentos. Feature commits ship as patch releases while it is 0.x, and breaking changes ship as minors",
        "Leave emergentConfig.allowSandboxTools off unless forged code runs through an executor that isolates. The default executor shares the host process",
        "Pass your own ICheckpointStore to compile() for runs that must survive a restart. The default store is in memory",
        "Set hitl.approvals.beforeTool for tools that write, and choose a handler. No approval gate is on by default",
        "Use Node 22 or newer, and set a provider key such as OPENAI_API_KEY or ANTHROPIC_API_KEY. The provider is detected from the environment"
      ],
      "metrics": {
        "kind": "library",
        "measured": false
      },
      "reviewCount": 0,
      "avgRating": 0,
      "history": [
        {
          "basis": "public evidence",
          "confidence": "medium",
          "grade": "BB",
          "methodology": "0.4",
          "pending": [
            "performance",
            "tasks"
          ],
          "run": "2026-10-01",
          "runLabel": "October 2026 research run",
          "score": 75.3
        }
      ],
      "editorialScores": {
        "ergonomics": 74,
        "maintenance": 87,
        "payments": 60,
        "reliability": 77,
        "schema": 92,
        "security": 81,
        "transparency": 80
      },
      "provenanceScore": 48
    },
    "connect": {
      "install": "npm install @framers/agentos"
    },
    "letme": {
      "capability": "https://letme.dev/agent.framework",
      "tool": "https://letme.dev/agentos"
    },
    "notable": [
      "@framers/agentos 0.12.12 on 2026-10-08, the 98th release in the 90 days to that date, with 27 on 7 and 8 October and 558 versions since 12 December 2025 (https://registry.npmjs.org/@framers/agentos)",
      "While the package is 0.x, feature and fix commits release a patch and a breaking change releases a minor, under written rules (https://github.com/framerslab/agentos/blob/master/docs/getting-started/RELEASING.md)",
      "Agent-written code tools run in an in-process node:vm context, off by default, and the docs quote Node's statement that node:vm is not a security mechanism (https://github.com/framerslab/agentos/blob/master/docs/architecture/EMERGENT_CAPABILITIES.md)",
      "The privacy page says the core project does not phone home, collect analytics or send end-user data to Frame.dev (https://agentos.sh/legal/privacy/)",
      "Approval gates cover five triggers with six handler factories, among them CLI, Slack, webhook and an LLM judge (https://github.com/framerslab/agentos/blob/master/docs/safety/HUMAN_IN_THE_LOOP.md)",
      "No MCP client was found. The only match for MCP in the package source is a comment in the capability-discovery code (https://github.com/framerslab/agentos)"
    ],
    "area": "frameworks",
    "details": [
      {
        "label": "Languages",
        "value": "TypeScript, Node 22 or newer"
      },
      {
        "label": "Version",
        "value": "0.12.12 on 8 October 2026. First published to npm on 12 December 2025"
      },
      {
        "label": "Models",
        "value": "11 providers per the README. OpenAI, Anthropic, Gemini, Groq, Ollama, OpenRouter, Together, Mistral, xAI, and the Claude and Gemini CLIs"
      },
      {
        "label": "MCP client",
        "value": "Not found in the package source or the docs sitemap"
      },
      {
        "label": "Multi-agent",
        "value": "`agency()` with six strategies. sequential, parallel, debate, review-loop, hierarchical, graph"
      },
      {
        "label": "Durable state",
        "value": "Checkpoints at node boundaries with `graph.resume()` and fork. The shipped store is in memory, and a persistent one is an `ICheckpointStore` you write"
      },
      {
        "label": "Human approval",
        "value": "`hitl.approvals` with five triggers and six handlers, plus a human step in workflows. Off unless configured"
      },
      {
        "label": "Guardrails",
        "value": "Five security tiers and six packs per the README. The injection and jailbreak classifiers are a separate extension package"
      },
      {
        "label": "Sandbox",
        "value": "Agent-written code tools run in an in-process node:vm context with a wall-clock timeout and no memory limit. Off by default"
      },
      {
        "label": "Tracing",
        "value": "OpenTelemetry API spans, metrics and logs, opt-in. The host application starts the SDK"
      },
      {
        "label": "Telemetry",
        "value": "None found in the source. The privacy page says the core does not phone home"
      },
      {
        "label": "Releases in 90 days",
        "value": "98 versions on npm, 27 of them on 7 and 8 October 2026"
      }
    ],
    "provenance": {
      "legalEntity": "Framers Lab, Inc.",
      "domain": "agentos.sh",
      "domainRegistered": "2025-10-26",
      "endpointOnVendorDomain": null,
      "terms": "https://agentos.sh/legal/terms/",
      "privacy": "https://agentos.sh/legal/privacy/",
      "statusPage": "",
      "changelog": "https://github.com/framerslab/agentos/blob/master/CHANGELOG.md",
      "securityTxt": "none",
      "checked": "2026-10-08",
      "notes": [
        "agentos.sh/llms.txt names Framers Lab, Inc. as the company behind AgentOS. The site footer reads Frame.dev and the licence file reads Copyright (c) 2025 Framers.",
        "The terms and privacy pages are guidance for a self-hosted open-source package, each last updated on 6 November 2025.",
        "agentos.sh/.well-known/security.txt and docs.agentos.sh/.well-known/security.txt return 404. The repository has .github/SECURITY.md.",
        "RDAP gives agentos.sh a registration date of 2025-10-26.",
        "The npm maintainers are manicteam (team@manic.agency) and jdunnfive."
      ],
      "score": 48,
      "checks": [
        {
          "check": "Legal entity named",
          "value": "Framers Lab, Inc.",
          "points": 20,
          "max": 20,
          "state": "ok"
        },
        {
          "check": "Domain age",
          "value": "agentos.sh, registered 2025-10-26 (under a year)",
          "points": 0,
          "max": 15,
          "state": "no"
        },
        {
          "check": "Endpoint on the vendor's domain",
          "value": "no hosted endpoint",
          "points": 0,
          "max": 0,
          "state": "na"
        },
        {
          "check": "Terms of service",
          "value": "read, states 2 of the 7 things a reader expects",
          "points": 5.7,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Privacy policy",
          "value": "read, states 2 of the 8 things a reader expects",
          "points": 5.5,
          "max": 10,
          "state": "part"
        },
        {
          "check": "Status page",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        },
        {
          "check": "Changelog",
          "value": "published",
          "points": 10,
          "max": 10,
          "state": "ok"
        },
        {
          "check": "security.txt",
          "value": "not found",
          "points": 0,
          "max": 10,
          "state": "no"
        }
      ],
      "policies": [
        {
          "kind": "terms",
          "url": "https://agentos.sh/legal/terms/",
          "state": "read",
          "readAt": "2026-10-08",
          "statedDate": "2025-11-06",
          "words": 301,
          "points": 5.7,
          "max": 10,
          "expected": [
            {
              "key": "terms.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Last updated: November 6, 2025",
              "says": "Last updated 2025-11-06"
            },
            {
              "key": "terms.law",
              "label": "Names the governing law or courts",
              "found": false
            },
            {
              "key": "terms.liability",
              "label": "States a limit on its liability",
              "found": false
            },
            {
              "key": "terms.termination",
              "label": "Says how the agreement or account can be ended",
              "found": false
            },
            {
              "key": "terms.changes",
              "label": "Says how changes to the terms are announced",
              "found": false
            },
            {
              "key": "terms.use",
              "label": "Lists what users may not do",
              "found": false
            },
            {
              "key": "terms.sla",
              "label": "Refers to a service level or uptime commitment",
              "found": true,
              "quote": "The maintainers do not provide service-level agreements for self-hosted deployments."
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "The hosted Voice Chat Assistant run by Frame.dev has its own Terms of Service, separate from this page about self-hosted AgentOS.",
              "quote": "If you use the managed Voice Chat Assistant service operated by Frame.dev, that product is governed by its own Terms of Service."
            }
          ]
        },
        {
          "kind": "privacy",
          "url": "https://agentos.sh/legal/privacy/",
          "state": "read",
          "readAt": "2026-10-08",
          "statedDate": "2025-11-06",
          "words": 327,
          "points": 5.5,
          "max": 10,
          "expected": [
            {
              "key": "privacy.date",
              "label": "Gives the date it was last updated",
              "found": true,
              "quote": "Last updated: November 6, 2025",
              "says": "Last updated 2025-11-06"
            },
            {
              "key": "privacy.collected",
              "label": "Says what personal data is collected",
              "found": false
            },
            {
              "key": "privacy.retention",
              "label": "Says how long data is kept",
              "found": false
            },
            {
              "key": "privacy.processors",
              "label": "Says who else receives the data",
              "found": false
            },
            {
              "key": "privacy.sale",
              "label": "Says whether personal data is sold or shared for advertising",
              "found": false
            },
            {
              "key": "privacy.rights",
              "label": "Says what rights people have over their data",
              "found": false
            },
            {
              "key": "privacy.contact",
              "label": "Gives a privacy contact",
              "found": true,
              "quote": "Fork this site, update the copy for your jurisdiction, or reach out at[email protected].",
              "says": "Gives an email address, hidden from our reader by the page"
            },
            {
              "key": "privacy.transfers",
              "label": "Says where data is transferred or stored",
              "found": false
            }
          ],
          "notes": [
            {
              "date": "2026-10-08",
              "text": "The self-hosted core project collects no analytics and sends no end-user data to Frame.dev.",
              "quote": "The core project does not phone home, collect analytics, or transmit end-user data to Frame.dev."
            }
          ]
        }
      ]
    },
    "pageJsonUrl": "https://www.anchorterminal.com/tools/agentos.json",
    "live": {
      "slug": "agentos",
      "versions": [
        {
          "registry": "github",
          "name": "framerslab/agentos",
          "version": "v0.12.19",
          "released": "2026-10-08",
          "seenAt": "2026-10-08T15:57:02.574435501Z"
        },
        {
          "registry": "npm",
          "name": "@framers/agentos",
          "version": "0.12.18",
          "seenAt": "2026-10-08T15:56:59.075163209Z"
        }
      ],
      "githubStars": 677,
      "npmWeekly": 5328,
      "securityTxt": {
        "url": "https://agentos.sh/.well-known/security.txt",
        "state": "none",
        "checkedAt": "2026-10-08T15:39:04.671140527Z"
      },
      "pages": [
        {
          "url": "https://raw.githubusercontent.com/framerslab/agentos/master/CHANGELOG.md",
          "kind": "changelog",
          "status": 200,
          "checkedAt": "2026-10-08T18:24:11.740403315Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "dfad142f5c49"
        },
        {
          "url": "https://agentos.sh/legal/privacy/",
          "kind": "privacy",
          "status": 200,
          "checkedAt": "2026-10-08T18:15:01.89988396Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "bc4eee9c0723"
        },
        {
          "url": "https://agentos.sh/legal/terms/",
          "kind": "terms",
          "status": 200,
          "checkedAt": "2026-10-08T18:15:04.167873818Z",
          "changedAt": "0001-01-01T00:00:00Z",
          "fingerprint": "fd96d6bf7f83"
        }
      ],
      "updatedAt": "2026-10-08T18:24:11.740403315Z"
    }
  }
}
